{"id":15181,"date":"2023-01-12T19:09:41","date_gmt":"2023-01-12T18:09:41","guid":{"rendered":"https:\/\/www.nextron-systems.com\/?page_id=15181"},"modified":"2024-04-08T14:24:12","modified_gmt":"2024-04-08T12:24:12","slug":"t101","status":"publish","type":"page","link":"https:\/\/www.nextron-systems.com\/trainings\/t101\/","title":{"rendered":"T101 | THOR APT Scanner Fundamentals"},"content":{"rendered":"<p>[et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; background_color=&#8221;#03161f&#8221; use_background_color_gradient=&#8221;on&#8221; background_color_gradient_stops=&#8221;rgba(3,22,31,0.5) 0%|#03161f 100%&#8221; background_color_gradient_overlays_image=&#8221;on&#8221; background_image=&#8221;https:\/\/www.nextron-systems.com\/wp-content\/uploads\/2024\/02\/01.resized.jpg&#8221; background_position=&#8221;top_center&#8221; background_vertical_offset=&#8221;20%&#8221; custom_padding=&#8221;5%||5%||false|false&#8221; hover_enabled=&#8221;0&#8243; da_disable_devices=&#8221;off|off|off&#8221; global_colors_info=&#8221;{}&#8221; module_class=&#8221;nextron-div-bottom&#8221; admin_label=&#8221;Section&#8221; da_is_popup=&#8221;off&#8221; da_exit_intent=&#8221;off&#8221; da_has_close=&#8221;on&#8221; da_alt_close=&#8221;off&#8221; da_dark_close=&#8221;off&#8221; da_not_modal=&#8221;on&#8221; da_is_singular=&#8221;off&#8221; da_with_loader=&#8221;off&#8221; da_has_shadow=&#8221;on&#8221; sticky_enabled=&#8221;0&#8243;][et_pb_row _builder_version=&#8221;4.24.0&#8243; _module_preset=&#8221;default&#8221; custom_padding=&#8221;0px||0px||false|false&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.24.0&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_text _builder_version=&#8221;4.24.0&#8243; _module_preset=&#8221;default&#8221; text_font=&#8221;|800||on|||||&#8221; text_font_size=&#8221;20px&#8221; link_text_color=&#8221;#999999&#8243; custom_margin=&#8221;||||false|false&#8221; custom_padding=&#8221;||||false|false&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<p><a href=\"\/trainings\"><i style=\"margin-right: 10px;\" class=\"fa-solid fa-arrow-left\"><\/i>Back to Trainings<\/a><\/p>\n<p>[\/et_pb_text][et_pb_text _builder_version=&#8221;4.24.2&#8243; _module_preset=&#8221;default&#8221; header_font=&#8221;|800|||||||&#8221; header_font_size=&#8221;60px&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<h1>T101 | THOR APT Scanner Fundamentals<\/h1>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][\/et_pb_section][et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.19.4&#8243; _module_preset=&#8221;default&#8221; da_disable_devices=&#8221;off|off|off&#8221; global_colors_info=&#8221;{}&#8221; admin_label=&#8221;Section&#8221; da_is_popup=&#8221;off&#8221; da_exit_intent=&#8221;off&#8221; da_has_close=&#8221;on&#8221; da_alt_close=&#8221;off&#8221; da_dark_close=&#8221;off&#8221; da_not_modal=&#8221;on&#8221; da_is_singular=&#8221;off&#8221; da_with_loader=&#8221;off&#8221; da_has_shadow=&#8221;on&#8221;][et_pb_row column_structure=&#8221;2_3,1_3&#8243; _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; hover_enabled=&#8221;0&#8243; global_colors_info=&#8221;{}&#8221; custom_margin=&#8221;60px||40px||false|false&#8221; sticky_enabled=&#8221;0&#8243;][et_pb_column type=&#8221;2_3&#8243; _builder_version=&#8221;4.19.5&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_text _builder_version=&#8221;4.19.5&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;]One-day web-based training with virtual lab infrastructure. Topics: Product Overview and licensing schemes. Run THOR from the command line with various options for different detection use cases. Evaluate different messages from different THOR modules.[\/et_pb_text][et_pb_text _builder_version=&#8221;4.24.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<h3>Technical requirements<\/h3>\n<p>To use the THOR software in this training, we provide <strong>one Windows 10 machine in our Cloud LAB<\/strong>. To be able to perform the training and exercises, a client with RDP software is required together with an internet connection.<\/p>\n<p>[\/et_pb_text][et_pb_text _builder_version=&#8221;4.19.5&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<h3>Prerequisites<\/h3>\n<p>Solid practical experience with command line tools under Microsoft Windows. Basic understanding of hacking techniques and their traces on a system. Experience in the field of Security Monitoring is helpful but not required.<\/p>\n<p>Estimated training time is 8 hours. Cloud Lab is available for five days.<br \/>\nTraining must be completed within the five-day lab availability.<\/p>\n<p>Training concludes with a participation certificate.[\/et_pb_text][\/et_pb_column][et_pb_column type=&#8221;1_3&#8243; _builder_version=&#8221;4.19.5&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_cta title=&#8221;T101 | THOR APT Scanner Fundamentals&#8221; button_url=&#8221;\/trainings\/booking&#8221; button_text=&#8221;Booking&#8221; _builder_version=&#8221;4.24.2&#8243; _module_preset=&#8221;default&#8221; header_level=&#8221;h3&#8243; header_font_size=&#8221;22px&#8221; background_color=&#8221;#15242a&#8221; text_orientation=&#8221;left&#8221; border_width_all=&#8221;2px&#8221; border_color_all=&#8221;#009EC7&#8243; box_shadow_style=&#8221;preset1&#8243; box_shadow_vertical=&#8221;0px&#8221; box_shadow_blur=&#8221;30px&#8221; box_shadow_spread=&#8221;-10px&#8221; box_shadow_color=&#8221;#009EC7&#8243; global_colors_info=&#8221;{}&#8221;]<\/p>\n<p>900,00 \u20ac<\/p>\n<p>[\/et_pb_cta][et_pb_text _builder_version=&#8221;4.24.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<h3>Detailed learning content<\/h3>\n<ul>\n<li>Basic understanding of THOR and its characteristics and features<\/li>\n<li>Working with the LAB Environment<\/li>\n<li>THOR Util and its maintenance features<\/li>\n<ul>\n<li>upgrade<\/li>\n<li>update<\/li>\n<li>download<\/li>\n<\/ul>\n<li>Basic Scanning and Evaluation<\/li>\n<li>Practical exercises for THOR scans, such as<\/li>\n<ul>\n<li>SHIMCache<\/li>\n<li>Registry<\/li>\n<li>Full scan<\/li>\n<\/ul>\n<li>Use of THOR on the command line<\/li>\n<li>Custom IOCs<\/li>\n<li>Recommended Flags<\/li>\n<li>Handling of false positives<\/li>\n<li>Debugging with THOR<\/li>\n<\/ul>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Back to TrainingsT101 | THOR APT Scanner FundamentalsOne-day web-based training with virtual lab infrastructure. Topics: Product Overview and licensing schemes. Run THOR from the command line with various options for different detection use cases. Evaluate different messages from different THOR modules.Technical requirements To use the THOR software in this training, we provide one Windows 10 machine in our Cloud LAB. To be able to perform the training and exercises, a client with RDP software is required together with an internet connection.Prerequisites Solid practical experience with command line tools under Microsoft Windows. Basic understanding of hacking techniques and their traces on a system. Experience in the field of Security Monitoring is helpful but not required. Estimated training time is 8 hours. Cloud Lab is available for five days. Training must be completed within the five-day lab availability. Training concludes with a participation certificate.900,00 \u20acDetailed learning content Basic understanding of THOR and its characteristics and features Working with the LAB Environment THOR Util and its maintenance features upgrade update download Basic Scanning and Evaluation Practical exercises for THOR scans, such as SHIMCache Registry Full scan Use of THOR on the command line Custom IOCs Recommended Flags Handling of false positives Debugging with [&hellip;]<\/p>\n","protected":false},"author":4,"featured_media":0,"parent":15139,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_et_pb_use_builder":"on","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"class_list":["post-15181","page","type-page","status-publish","hentry"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v24.9 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>T101 | THOR APT Scanner Fundamentals - Trainings - Nextron Systems<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.nextron-systems.com\/trainings\/t101\/\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.nextron-systems.com\/trainings\/t101\/\",\"url\":\"https:\/\/www.nextron-systems.com\/trainings\/t101\/\",\"name\":\"T101 | THOR APT Scanner Fundamentals - Trainings - Nextron Systems\",\"isPartOf\":{\"@id\":\"https:\/\/www.nextron-systems.com\/#website\"},\"datePublished\":\"2023-01-12T18:09:41+00:00\",\"dateModified\":\"2024-04-08T12:24:12+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/www.nextron-systems.com\/trainings\/t101\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.nextron-systems.com\/trainings\/t101\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.nextron-systems.com\/trainings\/t101\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Trainings\",\"item\":\"https:\/\/www.nextron-systems.com\/trainings\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"T101 | THOR APT Scanner Fundamentals\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.nextron-systems.com\/#website\",\"url\":\"https:\/\/www.nextron-systems.com\/\",\"name\":\"Nextron Systems\",\"description\":\"We Detect Hackers\",\"publisher\":{\"@id\":\"https:\/\/www.nextron-systems.com\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.nextron-systems.com\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.nextron-systems.com\/#organization\",\"name\":\"Nextron Systems GmbH\",\"url\":\"https:\/\/www.nextron-systems.com\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.nextron-systems.com\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/www.nextron-systems.com\/wp-content\/uploads\/2017\/11\/Nextron_0.2s_inv_symbol_only.png\",\"contentUrl\":\"https:\/\/www.nextron-systems.com\/wp-content\/uploads\/2017\/11\/Nextron_0.2s_inv_symbol_only.png\",\"width\":260,\"height\":260,\"caption\":\"Nextron Systems GmbH\"},\"image\":{\"@id\":\"https:\/\/www.nextron-systems.com\/#\/schema\/logo\/image\/\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"T101 | THOR APT Scanner Fundamentals - Trainings - Nextron Systems","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.nextron-systems.com\/trainings\/t101\/","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.nextron-systems.com\/trainings\/t101\/","url":"https:\/\/www.nextron-systems.com\/trainings\/t101\/","name":"T101 | THOR APT Scanner Fundamentals - Trainings - Nextron Systems","isPartOf":{"@id":"https:\/\/www.nextron-systems.com\/#website"},"datePublished":"2023-01-12T18:09:41+00:00","dateModified":"2024-04-08T12:24:12+00:00","breadcrumb":{"@id":"https:\/\/www.nextron-systems.com\/trainings\/t101\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.nextron-systems.com\/trainings\/t101\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.nextron-systems.com\/trainings\/t101\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Trainings","item":"https:\/\/www.nextron-systems.com\/trainings\/"},{"@type":"ListItem","position":2,"name":"T101 | THOR APT Scanner Fundamentals"}]},{"@type":"WebSite","@id":"https:\/\/www.nextron-systems.com\/#website","url":"https:\/\/www.nextron-systems.com\/","name":"Nextron Systems","description":"We Detect Hackers","publisher":{"@id":"https:\/\/www.nextron-systems.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.nextron-systems.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.nextron-systems.com\/#organization","name":"Nextron Systems GmbH","url":"https:\/\/www.nextron-systems.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.nextron-systems.com\/#\/schema\/logo\/image\/","url":"https:\/\/www.nextron-systems.com\/wp-content\/uploads\/2017\/11\/Nextron_0.2s_inv_symbol_only.png","contentUrl":"https:\/\/www.nextron-systems.com\/wp-content\/uploads\/2017\/11\/Nextron_0.2s_inv_symbol_only.png","width":260,"height":260,"caption":"Nextron Systems GmbH"},"image":{"@id":"https:\/\/www.nextron-systems.com\/#\/schema\/logo\/image\/"}}]}},"_links":{"self":[{"href":"https:\/\/www.nextron-systems.com\/wp-json\/wp\/v2\/pages\/15181","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.nextron-systems.com\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.nextron-systems.com\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.nextron-systems.com\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/www.nextron-systems.com\/wp-json\/wp\/v2\/comments?post=15181"}],"version-history":[{"count":43,"href":"https:\/\/www.nextron-systems.com\/wp-json\/wp\/v2\/pages\/15181\/revisions"}],"predecessor-version":[{"id":21901,"href":"https:\/\/www.nextron-systems.com\/wp-json\/wp\/v2\/pages\/15181\/revisions\/21901"}],"up":[{"embeddable":true,"href":"https:\/\/www.nextron-systems.com\/wp-json\/wp\/v2\/pages\/15139"}],"wp:attachment":[{"href":"https:\/\/www.nextron-systems.com\/wp-json\/wp\/v2\/media?parent=15181"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}